Azure AD Sync: How to Update the Security Certificate

Article 000004133 · Updated Jul 28, 2026 · 186 views

What Is Azure AD Sync?

Azure AD Sync keeps the Nextiva user list in sync with users in a customer's Azure (Entra) Active Directory. Adding or removing a user from a designated Security Group in Azure/Entra triggers that user to be created, updated, or disabled in Nextiva as part of a daily sync.

Only Nextiva users flagged with syncUser are affected by the sync. Users created manually in Nextiva are not touched.

Why the Certificate Needs Renewal

The integration authenticates to the customer's Azure/Entra directory using a certificate uploaded to the customer's App Registration in Azure. Certificates expire on a set schedule and must be replaced before expiration, or the daily sync will stop running.

Before You Start

  • Azure/Entra Administrator access to the tenant is required.

  • Click here to download the current certificate.

  • Identify the App Registration originally created for the Nextiva sync (commonly named “Nextiva Sync”).

How to Update the Certificate

  1. Sign in to the Azure/Entra portal with an Administrator account.

  2. Navigate to App Registrations.

  3. Select the app registration created for Nextiva during initial setup (e.g., Nextiva Sync).

  4. Under Manage, select Certificates & secrets.

  5. Select Upload certificate and choose the new Nextiva certificate file (.cer) from the downloaded package.

  6. Select Add to complete the upload.

The new certificate takes effect immediately. No changes to Security Group membership, username mapping, or the sync schedule are required.

If the Certificate Isn't Updated in Time

If the certificate expires before it's replaced, the daily sync between Azure/Entra and Nextiva stops working until a valid certificate is uploaded. Existing users are not affected retroactively — new creates, updates, and disables simply pause until the certificate is renewed.

Need Help?

Feel free to contact our support team.

Still need help with this?
Contact support